Email a friend

To

From

Thank you

Sorry

In a recent post, I described the problems with password reset, and how current password reset questions can be attacked. Here's an in-depth tech talk at I gave at Google on this topic the other day.

And if you want to take the preference-based system for a test drive, you can visit http://blue-moon-authentication.com/ -- the first screen shows you the setup, and the second screen how you would authenticate if you'd have forgotten your password.